1、 KS X ISO/IEC 180281 KSKSKSKS SKSKSKS KSKSKS SKSKS KSKS SKS KS IT 1: KS X ISO/IEC 180281 : 2007 (2012 ) 2007 11 30 http:/www.kats.go.krKS X ISO/IEC 180281:2007 : e- ( ) ( ) () () ( ) : () ( ) () () JS ( ) KS X ISO/IEC 180281:2007 : (http:/www.standard.go.kr) : :2007 11 30 :2012 12 31 2012-0848 : e :
2、 e ( 02-509-7262) (http:/www.kats.go.kr). 10 5 , . KS X ISO/IEC 180281:2007 i 2006 1 ISO 180281, Information technologySecurity techniquesIT network securityPart 1:Network security management , . KS X ISO/IEC 18028:2007 . 1: 2: 3: 4: 5: KS X ISO/IEC 180281:2007 ii . i 1 2 2 2 3 .2 4 .8 5 .9 6 .10 7
3、.10 7.1 .10 7.2 .13 8 .14 9 15 9.1 15 9.2 .16 9.3 16 9.4 16 9.5 17 9.6 .18 10 .18 11 20 11.1 .20 11.2 21 12 .22 13 27 13.1 27 13.2 27 13.3 44 13.4 47 13.5 49 13.6 50 13.7 .52 13.8 53 KS X ISO/IEC 180281:2007 iii 13.9 54 13.10 55 13.11 .59 14 .59 15 59 A() 61 .62 KS X ISO/IEC 180281 : 2007 (2012 ) IT
4、 1: Information technology Security techniques IT network security Part 1 :Network security management . , , , , , , . . ( ) . , . . , KS X ISO/IEC 18028 , , . . (KS X ISO/IEC 18028 ) . KS X ISO/IEC 180282 , , . KS X ISO/IEC 180283 . KS X ISO/IEC 180284 . KS X ISO/IEC 180285 (VPNs, virtual private n
5、etworks) . , . / . KS X ISO/IEC 180282 , (: , , ) . KS X ISO/IEC 180281:2007 2 KS X ISO/IEC 180283 , (: , , ) . KS X ISO/IEC 180284 , (: , , ) . KS X ISO/IEC 180285 VPN , (: , , ) . 1 . . KS X ISO/IEC 180282 KS X ISO/IEC 180285 . 2 . . ( ) . KS X ISO/IEC 133351:2005, 1: KS X ISO/IEC 17799:2006, KS X
6、 ISO/IEC 180282:2007, IT 2: KS X ISO/IEC 180283:2007, IT 3: KS X ISO/IEC 180284:2006, IT 4: KS X ISO/IEC 180285:2007, IT 5: KS X ISO/IEC 18043:2007, , , KS X ISO/IEC 18044:2005, 3 3.1 KS X ISO/IEC 7498( ) KS X ISO/IEC 17799 KS X ISO/IEC 133351 . (accountability), (asset), (authenticity), (availabili
7、ty), (baseline controls), (confidentiality), (data integrity), (impact), (integrity), (security policy), (non-repudiation), (reliability), (risk), (risk analysis), (risk assessment), (risk management), (control), (threat) (vulnerability). KS X ISO/IEC 180281:2007 3 3.2 . 3.2.1 (alert) , 3.2.2 (attac
8、ker) 3.2.3 (audit) , 3.2.4 (audit logging) 3.2.5 (audit tools) 3.2.6 (business continuity management) . , , , , . 3.2.7 Comp1281 SIM 3.2.8 (DMZ, demilitarized zone) “ ” ( ) . 3.2.9 (DoS, denial of service) KS X ISO/IEC 180281:2007 4 3.2.10 (extranet) (Intranet) . 3.2.11 (filtering) 3.2.12 (firewall)
9、 . 3.2.13 (hub) OSI (KS X ISO/IEC 74981) 1 . . 3.2.14 (information security event) , KS X ISO/IEC 18044 3.2.15 (information security incident) . KS X ISO/IEC 18044 3.2.16 (information security incident management) KS X ISO/IEC 18044 3.2.17 (internet) KS X ISO/IEC 180281:2007 5 3.2.18 (intranet) 3.2.
10、19 (intrusion) , 3.2.20 (intrusion detection) , . KS X ISO/IEC 18043 3.2.21 (IDS, intrusion detection system) , KS X ISO/IEC 18043 3.2.22 (IPS, intrusion prevention system) KS X ISO/IEC 18043 3.2.23 (jitter) 3.2.24 (malware) 3.2.25 (MPLS, multi protocol label switching) . . 3.2.26 (network administr
11、ation) KS X ISO/IEC 180281:2007 6 3.2.27 (network analyzer) 3.2.28 (network element) KS X ISO/IEC 180282 . 3.2.29 (network management) , , , , 3.2.30 (network monitoring) 3.2.31 (network security policy) , . 3.2.32 (port) TCP UDP . TCP UDP . , HTTP 80 3.2.33 (privacy) , . . , , . 3.2.34 (remote acce
12、ss) , 3.2.35 (remote user) KS X ISO/IEC 180281:2007 7 3.2.36 (router) . . 3.2.37 (security dimension) KS X ISO/IEC 18028-2 . 3.2.38 (security domain) 3.2.39 (security gateway) KS X ISO/IEC 180283 . 3.2.40 (security layers) . KS X ISO/IEC 180282 . 3.2.41 (security plane) . KS X ISO/IEC 180282 . 3.2.4
13、2 (spamming) . 3.2.43 (spoofing) . 3.2.44 (switch) KS X ISO/IEC 180281:2007 8 (:) . . OSI 2 3 (KS X ISO/IEC 74981). 3.2.45 (tunnel) , 3.2.46 (virtual private network) / 4 KS X ISO/IEC 18028 . 3G Third Generation mobile telephone system AAA Authentication, Authorization and Accounting ACL Access Cont
14、rol List ADSL Asymmetric Digital Subscriber Line AES Advanced Encryption Standard ATM Asynchronous Transfer Mode CDPD Cellular Digital Packet Data CDMA Code Division Multiple Access CLID Calling Line Identifier CLNP Connectionless Network Protocol CoS Class of Service CRM Customer Relationship Manag
15、ement DEL Direct Exchange Line DES Data Encryption Standard DMZ Demilitarized Zone DNS Domain Name Service DoS Denial of Service DSL Digital Subscriber Line EDGE Enhanced Data-Rates for GSM Evolution EDI Electronic Data Interchange EGPRS Enhanced General Packet Radio Service EIS Enterprise Informati
16、on System FTP File Transfer Protocol GPRS General Packet Radio Service GSM Global System for Mobile communications HIDS Host based Intrusion Detection System HTTP Hypertext Transfer Protocol IDS Intrusion Detection System IP Internet Protocol ISP Internet Service Provider IT Information Technology L
17、AN Local Area Network MPLS Multi-Protocol Label Switching MRP Manufacturing Resource Planning KS X ISO/IEC 180281:2007 9 NAT Network Address Translation NIDS Network Intrusion Detection System NTP Network Time Protocol OOB Out of Band PC Personal Computer PDA Personal Data Assistant PIN Personal Ide
18、ntification Number PKI Public Key Infrastructure PSTN Public Switched Telephone Network QoS Quality of Service RAID Redundant Array of Inexpensive Disks RAS Remote Access Service RTP Real Time Protocol SDSL Symmetric Digital Subscriber Line SecOPs Security Operating Procedures SIM Subscriber Identit
19、y Module SNMP Simple Network Management Protocol SSH Secure Shell TCP Transmission Control Protocol TDMA Time Division Multiple Access Telnet Terminal emulation program to work on-line on a remote computer TETRA TErrestial Trunked RAdio TKIP Temporal Key Integrity Protocol UDP User Datagram Protocol
20、 UMTS Universal Mobile Telecommunications System UPS Uninterruptible Power Supply USB Universal Serial Bus VHF Very High Frequency VoIP Voice over IP VPN Virtual Private Network WAN Wide Area Network WAP Wireless Application Protocol WEP Wired Equivalent Privacy WLAN Wireless Local Area Network WORM Write Once Read Many 5 . . . ISO/IEC 133351 KS X ISO/IEC 17799 KS X ISO/IEC 180282 KS X ISO/IEC 180285 . 3 . . KS X ISO/IEC 180281:2007 10 ( ) . , . . (Network Security Architecture) (KS X ISO/IEC 180283 ) (KS X ISO/IEC 180284 ) (KS X ISO/IEC 180285 ) IP (, ) ( )
copyright@ 2008-2019 麦多课文库(www.mydoc123.com)网站版权所有
备案/许可证编号:苏ICP备17064731号-1